CVE
- Id
- 39956
- CVE No.
- CVE-2009-2521
- Status
- Candidate
- Description
- Stack consumption vulnerability in the FTP Service in Microsoft Internet Information Services (IIS) 5.0 through 7.0 allows remote authenticated users to cause a denial of service (daemon crash) via a list (ls) -R command containing a wildcard that references a subdirectory, followed by a .. (dot dot), aka "IIS FTP Service DoS Vulnerability."
- Phase
- Assigned (20090717)
- Votes
- None (candidate not yet proposed)
- Comments